Hijack This log

  Venezia 22:15 30 Jan 2005

Having sorted out last weekend's problems, I now find internet access is very intermittent. Tried system restore several times, also had strong feeling it was a modem problem and have tried lots of things in relation to that. It's obviously working at the moment, but the pc has slowed down significantly and takes ages to load basic files and programmes. Here's the latest logfile - anything I should be worried about?

Logfile of HijackThis v1.99.0
Scan saved at 22:03:35, on 30/01/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\Program Files\Microsoft SQL Server\MSSQL$SOPHOS\Binn\sqlservr.exe
C:\Program Files\Sophos\Control Center\Library\bin\SchdSrvc.exe
C:\Program Files\Sophos\Remote Management System\RouterNT.exe
C:\Program Files\Sophos\Control Center\CertificationManagerServiceNT.exe
C:\Program Files\Sophos SWEEP for NT\SWNETSUP.EXE
C:\Program Files\Sophos SWEEP for NT\SWEEPSRV.SYS
C:\Program Files\Sophos\Remote Management System\ManagementAgentNT.exe
C:\Program Files\Sophos\Remote Management System\ALCAgent.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Sophos SWEEP for NT\ICMON.EXE
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Really good spyware etc\SpywareGuard\sgmain.exe
C:\Program Files\Really good spyware etc\SpywareGuard\sgbhp.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Sophos SWEEP for NT\WSWEEPNT.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\HijackThis.exe

  Venezia 22:16 30 Jan 2005

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = click here
O2 - BHO: (no name) - {2F791725-63EA-486F-91F0-056064C20303} - C:\WINDOWS\system32\mspq.dll (file missing)
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll (file missing)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - Startup: SpywareGuard.lnk = C:\Program Files\Really good spyware etc\SpywareGuard\sgmain.exe
O4 - Global Startup: InterCheck Monitor.LNK = C:\Program Files\Sophos SWEEP for NT\ICMON.EXE
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - click here
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - click here
O16 - DPF: {C81B5180-AFD1-41A3-97E1-99E8D254DB98} (CSS Web Installer Class) - click here
O17 - HKLM\System\CCS\Services\Tcpip\..\{1036BF2E-2D7E-40F2-B1B5-D2CB6694803D}: NameServer =,
O17 - HKLM\System\CCS\Services\Tcpip\..\{28A12A0A-41E2-45E3-89B4-B0F542371877}: NameServer =,
O17 - HKLM\System\CCS\Services\Tcpip\..\{5CE5A97F-573D-4D02-A10B-2022FEE2DC56}: NameServer =,
O17 - HKLM\System\CCS\Services\Tcpip\..\{9B89632D-0B57-4757-9781-2B248E0AD04A}: NameServer =,
O17 - HKLM\System\CCS\Services\Tcpip\..\{EEEAC243-7D9C-433D-992D-C91FBC9E6532}: NameServer =,
O17 - HKLM\System\CS1\Services\Tcpip\..\{1036BF2E-2D7E-40F2-B1B5-D2CB6694803D}: NameServer =,
O17 - HKLM\System\CS2\Services\Tcpip\..\{1036BF2E-2D7E-40F2-B1B5-D2CB6694803D}: NameServer =,
O23 - Service: Sophos Database Notification Service - Sophos Plc - C:\Program Files\Sophos\Control Center\Sdbnsrvc.exe
O23 - Service: Sophos Enterprise Manager Scheduler - Unknown - C:\Program Files\Sophos\Control Center\Library\bin\SchdSrvc.exe
O23 - Service: Sophos Agent - SOPHOS Plc - C:\Program Files\Sophos\Remote Management System\ManagementAgentNT.exe
O23 - Service: Sophos AutoUpdate Agent - Unknown - C:\Program Files\Sophos\Remote Management System\ALCAgent.exe
O23 - Service: Sophos Message Router - SOPHOS Plc - C:\Program Files\Sophos\Remote Management System\RouterNT.exe
O23 - Service: Sophos SBE Certification Manager - SOPHOS Plc - C:\Program Files\Sophos\Control Center\CertificationManagerServiceNT.exe
O23 - Service: Sophos Anti-Virus Network - Sophos Plc - C:\Program Files\Sophos SWEEP for NT\SWNETSUP.EXE
O23 - Service: Sophos Anti-Virus - Sophos Plc - C:\Program Files\Sophos SWEEP for NT\SWEEPSRV.SYS
O23 - Service: TrueVector Internet Monitor - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

  helmetshine 22:28 30 Jan 2005

Thers a site click here checks Hijackthis log files for you..do a scan and save the log file...go to the site and either copy and paste the log or use then browse button to locate it.As it's automated it's not as good as someone who knows what they're doing checking it for you...but it will give you an idea

  Venezia 22:39 30 Jan 2005

Ok - thanks. I'll give it a go.

  VoG II 22:43 30 Jan 2005

Dangerous! Ask for a second opinion before "fixing" anything.

  end 00:17 31 Jan 2005

an "automated" site to read the log and advise?

I presume you do wish your machine to work after that?

as Vog says; dangerous idea:(

  Venezia 07:04 31 Jan 2005

I had a look at the site but didn't follow the advice!

This thread is now locked and can not be replied to.

Elsewhere on IDG sites

Best Black Friday Deals 2017

How modern book design was influenced by illustrated manuscripts

Best Black Friday Apple Deals 2017

Les meilleurs logiciels de montage vidéo gratuits (en 2017)